Skip to content
Hard Design: Payment System (Stripe/PayPal)

What is HMAC-SHA256 signature verification used for in webhook delivery?

— Tests your understanding of this concept.

Answer Options

A To encrypt the webhook payload
B To allow merchants to verify that webhooks are genuinely sent by the payment processor and not forged
C To prevent replay attacks only
D To compress the webhook payload

Want to see the correct answer?

Get the answer with a detailed explanation, plus practice 22+ more Design: Payment System (Stripe/PayPal) questions with adaptive quizzes and timed interviews.

See the Answer on Guru Sishya →

This question is from the Design: Payment System (Stripe/PayPal) topic (System Design Cases).

More Design: Payment System (Stripe/PayPal) Questions